CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2019-10195 MEDIUM
IPA <4.6.7, <4.7.4, <4.8.3 - Info Disclosure
CVSS 6.5
CVE-2019-11290 HIGH
Cloudfoundry Cf-deployment < 12.10.0 - Log Information Exposure
CVSS 7.5
CVE-2019-10213 MEDIUM
OpenShift Container Platform 4.1-4.2 - Info Disclosure
CVSS 6.5
CVE-2019-19039 MEDIUM
Linux kernel <5.3.12 - Info Disclosure
CVSS 5.5
CVE-2019-6662 MEDIUM
F5 BIG-IP 13.1.0-13.1.1.4 - Sensitive Information Disclosure in Log Files
CVSS 6.5
CVE-2019-3649 MEDIUM
McAfee Advanced Threat Defense < 4.8 - Authenticated Information Disclosure via Log File Extraction
CVSS 5.3
CVE-2019-16210 MEDIUM
Brocade SANnav <2.0 - Info Disclosure
CVSS 5.5
CVE-2019-16206 MEDIUM
Brocade SANnav <2.0 - Info Disclosure
CVSS 5.5
CVE-2019-10084 HIGH
Apache Impala 2.7.0-3.2.0 - Auth Bypass
CVSS 7.5
CVE-2019-18385 HIGH
TerraMaster FS-210 4.0.19 - Unauthenticated Sensitive Information Exposure via Log File Download
CVSS 7.5
CVE-2019-11283 HIGH
Cloudfoundry Cf-deployment < 12.2.0 - Log Information Exposure
CVSS 8.8
CVE-2019-17395 CRITICAL
Rapidgator - Log Information Exposure
CVSS 9.8
CVE-2019-17398 CRITICAL
Dark Horse Comics 1.3.21 - Sensitive Information Exposure in Log Files
CVSS 9.8
CVE-2019-17396 CRITICAL
PowerSchool Mobile < 1.1.8 - Sensitive Information Exposure via Logcat
CVSS 9.8
CVE-2019-17394 CRITICAL
Seesaw Parent and Family 6.2.5 - Sensitive Information Exposure in Log Files
CVSS 9.8
CVE-2019-17355 CRITICAL
Orbitz 19.31.1 - Sensitive Information Exposure in Log Files
CVSS 9.8
CVE-2019-17397 CRITICAL
DoorDash < 11.5.2 - Sensitive Information Exposure via Log File
CVSS 9.8
CVE-2019-14858 MEDIUM
Ansible Engine 2.0-2.8.0 and Ansible Tower 3.0-3.5.0 - Sensitive Information Disclosure in Log Files
CVSS 5.5
CVE-2019-4572 MEDIUM
IBM FileNet Content Manager <5.5.3 - Info Disclosure
CVSS 4.4
CVE-2019-0380 MEDIUM
SAP Landscape Management < 3.0 - Information Disclosure via Log File Insertion
CVSS 4.9
CVE-2019-14846 HIGH
Ansible Engine < 2.6.20 - Sensitive Information Disclosure in Debug Logs
CVSS 7.8
CVE-2019-10212 CRITICAL
Undertow < 2.0.20 - Sensitive Information Disclosure in DEBUG Log
CVSS 9.8
CVE-2019-16116 MEDIUM
EnterpriseDT CompleteFTP Server <12.1.3 - Info Disclosure
CVSS 4.3
CVE-2019-9277 LOW
Android 10 - Information Disclosure via Proc Filesystem Log
CVSS 3.3
CVE-2019-6656 HIGH
BIG-IP APM Edge Client < 7.1.8 - Sensitive Information Disclosure in Log Files
CVSS 7.5
Details
Vulnerabilities 1,137
Exploit Likelihood Medium